Websphere application server - liberty
This hub aggregates every CVE we track for Websphere application server - liberty, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
27
CVEs tracked
1
Critical
19
High
0
In CISA KEV
Severity distribution
HIGH19MEDIUM6LOW1CRITICAL1
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
3
1
2
6
14
1
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Websphere application server - liberty.
- CVE-2026-8400Multiple Vulnerabilities in IBM® Java SDK affect IBM WebSphere Application Server and WebSphere Application Server Liberty due to the July 2026 CPU8.1
- CVE-2026-9322IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities7.5
- CVE-2026-10842IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a security bypass vulnerability7.5
- CVE-2026-11897IBM WebSphere Application Server Liberty is affected by a denial of service vulnerability with HTTP/27.5
- CVE-2026-14980IBM WebSphere Application Server Liberty is affected by a cross-site request forgery8.3
- CVE-2026-2482IBM WebSphere Application Server Liberty is affected by a cross-site request forgery3.1
- CVE-2026-14529IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a server-side request forgery9.4
- CVE-2026-14976IBM WebSphere Application Server Liberty is affected by a remote code execution and path-segment injection vulnerability7.1
- CVE-2026-14981IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities7.5
- CVE-2026-15057IBM WebSphere Application Server Liberty is affected by a denial of service vulnerability7.5
- CVE-2026-15064IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities8.7
- CVE-2026-15280IBM WebSphere Application Server Liberty is affected by a remote code execution and path-segment injection vulnerability7.5
- CVE-2026-15325IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by multiple vulnerabilities8.7
- CVE-2026-15328IBM WebSphere Application Server and WebSphere Application Server Liberty is inconsistent Interpretation of HTTP Requests7.4
- CVE-2026-16192IBM WebSphere Application Server Liberty is affected by a denial of service7.1
Product normalization is registry-driven with AI assist and human review. How it works